Confessions of the QSA: An Introduction to the Payment Card Industry Data Security Standard

 

As most in the industry know, a QSA must get certified by the PCI Security Standards Security Council to audit merchants for Payment Card Industry Data Security Standard (PCI DSS) compliance. Created in 2004 by major credit card brands, such as Visa and American Express, the council acts as a form of self-regulation.

So, how did Weaver become an expert on PCI, and what types of solutions does it offer its clients?

On this episode of Weaver: Beyond The Numbers, host Tyler Kern talked with Trip Hillman, Director of Cyber Security Services at Weaver, and Kyle Morris, Manager of IT at Advisory Services at Weaver. The trio dug into insights from Weaver’s Quality Security Assessor and explored how Weaver dove headfirst into PCI.

The PCI DSS applies to organizations that store, process, transmit or could affect the security of cardholder data. Companies that fall under this standard could do a variety of things, such as an annual self-assessment questionnaire, or bring in a third-party, independent QSA to do a full-blown report on compliance audit.

Morris is a QSA and started at Weaver about eight years ago. A few years into his career, they had a client, a service provider, start getting asked by their customers if they knew anything about PCI and the report on compliance. At the time, they hadn’t done anything with it, but decided to figure it out. That morphed into Weaver diving headfirst into PCI.

“We help people with self-assessment questionnaires or SAQs and everything from full-on ROCs for Fortune 50 Cloud Providers to small merchants to SaaS solutions,” Morris said.

Follow us on social media for the latest updates in B2B!

Image

Latest

Closing the Gap Between Lockdowns and Live Visibility
Closing the Gap Between Lockdowns and Live Visibility
September 8, 2025

In this episode of Secured, Mike Monsive, CEO of ASAP Security, sits down once again with Idan Koren, CMO of Verkada, for a deep dive into how cloud-native technology is transforming school security across the U.S. with live visibility. With Verkada now protecting over 20 million students nationwide, Idan shares why the company’s integrated…

Read More
Good school
Just Thinking… About How Good Schools Foster Kindness, Curiosity, and Lifelong Learning
September 8, 2025

Artificial Intelligence is rapidly reshaping how schools, educators, and policymakers think about the future of learning. With OECD shifting its emphasis from test-based rankings toward human flourishing, and governments debating how to integrate digital tools without overwhelming already strained systems, the stakes couldn’t be higher. A McKinsey study found that 20 to 40% of teacher…

Read More
military force
How AI is Reshaping Talent, Training, and Logistics to Build the Workforce and Military Force of the Future
September 8, 2025

Artificial intelligence is radically transforming the military—an institution grappling with an eligibility crisis at home. According to the Department of Defense, a mere 23% of Americans aged 17 to 24 qualify for military force without needing a waiver, meaning that 77% are currently ineligible due to factors like obesity, drug use, and mental or…

Read More
Financial aid
Why Data-Driven Financial Aid Strategies Are Critical to Higher Ed’s Future
September 8, 2025

As higher education faces declining public trust and heightened financial pressure, colleges are being pushed to rethink how they manage enrollment and financial aid. Data analytics and predictive modeling are emerging as critical tools, with institutions seeking ways to allocate limited aid dollars while still aligning with their missions. According to the most recent data…

Read More